Senior Technology Risk Manager

5 days ago


Hong Kong Island, Hong Kong SAR China Rober Walters Hong Kong Full time

SENIOR TECHNOLOGY RISK MANAGER – CYBER SECURITY CONTROL DIVISION Salary: Competitive and based on experienceLocation: Hong Kong You will be entrusted with significant responsibility for safeguarding the organisation’s digital assets. Your day‑to‑day activities will involve close collaboration with various departments to develop forward‑thinking policies that address current and future risks, lead rigorous assessments across diverse technology environments—from on‑premises infrastructure to cloud platforms—and play a central role in orchestrating incident response operations. Responsibilities Formulate, review, and manage comprehensive cyber security policies, standards, and procedures to ensure organisational compliance with internal and external requirements. Assisting in planning technology‑related risk management strategies by developing processes and work plans that address evolving cyber threats. Participate actively in the design, development, and implementation phases of key cyber security projects to enhance overall protection measures. Plan and conduct thorough cyber security assessments and IT risk evaluations covering IT general controls, information asset management, access controls, cloud/server/endpoint/network/middleware security reviews. Support the execution of security initiatives to maintain compliance with corporate information security policies as well as local and international compliance standards. Organise and conduct penetration tests, red/blue/purple teaming exercises, vulnerability assessments, and validation controls for both local and overseas entities to identify potential risks. Provide operational support for cyber security incident response activities by collaborating closely with local and regional Security Operations Centre (SOC) teams to improve daily monitoring, analysis, investigation, and response protocols. Coordinate cross‑country cyber incident response drills to ensure preparedness for large‑scale or complex incidents affecting multiple jurisdictions. Serve as a subject‑matter expert by supporting business units and cross‑functional teams in identifying cybersecurity risks, discussing control gaps, and proposing effective remediation strategies. Research the latest developments in cyber threats and threat intelligence to keep the organisation informed about new risks while evaluating innovative solutions. Take ownership of cyber security policy formulation and risk management strategies, ensuring alignment with global best practices and regulatory requirements. Engage in high‑impact projects including penetration testing, vulnerability assessments, incident response operations, and regional cyber security exercises that span across Asia Pacific and Mainland China. Qualifications A degree in Computer Science, Information Systems or a related discipline. At least two years’ experience in IT security, technology risk management, compliance or IT audit functions gained within sizable financial institutions. Possession of at least one recognised professional qualification under HKMA enhanced competency framework such as CISA, CISSP or CISM. Additional industry‑recognised certifications such as OSCP/OSCE/OSWE/OSEE/GXPN/GPEN/GCPN/GCIH/GSOC/GCFA/OSDA/CCIE/CCNP are highly desirable. Familiarity with regulatory frameworks including HKMA TM‑E‑1/TM‑C‑1/TM‑G‑1/C‑RAF/PCI‑DSS/ISO 27001/PDPO/NIST/MITRE ATT&CK/OWASP. Hands‑on experience with technologies such as Firewall, IDS/IPS/WAF/DNS Security/Email Security/SIEM/SOAR/DLP/UEBA/BAS/XDR/Deception/Generative AI/Machine Learning/Application of AI/ML/LLM/MCP/RAG libraries in Python. Proven track record coordinating cross‑country cyber incident response drills highlighting ability to manage complex scenarios involving multiple stakeholders. Experience managing SOC operations including offensive security/container security/CSPM/threat hunting/OSINT/dark web monitoring/malware analysis/secops/digital forensics/attack surface management/cloud/on‑premises anti‑DDoS solution/threat modelling/supply chain cybersecurity/vulnerability management. Willingness to travel occasionally across Asia Pacific region (including Shenzhen and Shanghai) for regional assessments or training exercises. Excellent command of written and spoken English is required; proficiency in Mandarin is considered an advantage. Benefits This institution stands out due to its unwavering commitment to technological advancement paired with a deep‑rooted culture of collaboration. Employees benefit from extensive training opportunities designed to foster both personal growth and professional development. The organisation’s inclusive approach ensures that every team member’s voice is heard—encouraging open dialogue around new ideas while supporting flexible working arrangements when possible. With access to state‑of‑the‑art tools and resources—including advanced AI‑powered solutions—you’ll have everything needed to stay ahead of industry trends. Next Steps If you are ready to take on this rewarding challenge where your expertise can make a real difference in protecting critical assets on a global scale, we encourage you to apply now Apply today by clicking on the link provided – seize this opportunity to advance your career within one of Hong Kong’s most respected financial institutions. About the job Contract Type: Permanent Workplace Type: On‑site Experience Level: Senior Management Location: Central and Western District, Hong Kong Job Reference: ZEX3L5‑3517AEC7 Date posted: 21 October 2025 Consultant: Krishi Shah #J-18808-Ljbffr



  • Hong Kong Island, Hong Kong SAR China Manager, Operational and Technology Risk Full time

    Manager, Operational and Technology Risk Why Mox Everything at Mox – from our products, features, to rewards – is designed based on customer research, tailor made for your needs. We care about what customers care about, especially in data security and privacy. Data ethics is core to everyone here at Mox. Who are we looking for? The Mox Operational,...


  • Hong Kong Island, Hong Kong SAR China Manager, Operational and Technology Risk Full time

    A leading digital bank in Hong Kong is on the lookout for a Manager of Operational and Technology Risk. This role demands expertise in risk management, particularly operational and technology risks. The candidate will develop frameworks and collaborate with various stakeholders to ensure compliance with regulatory standards, oversee the risk-taking...


  • Hong Kong Island, Hong Kong SAR China Guotai Junan International Holdings Limited Full time

    Senior Technology Risk Manager - Operational Risk As a Second Line of Defense (2LoD) Senior Operational Risk Manager with technology focus and reporting to the lead of operational risk, you will provide independent oversight and validation of IT risk management activities, ensuring robust governance and risk mitigation across the organization. Leveraging...


  • Hong Kong Island, Hong Kong SAR China Rober Walters Hong Kong Full time

    Senior Technology Risk Manager Salary: Competitive and based on experienceLocation: Hong Kong Your day-to-day responsibilities will involve close collaboration with international teams to address emerging risks, coordinate compliance assessments, analyse critical data points, and supervise remediation efforts following audits or regulatory reviews. You will...


  • Hong Kong Island, Hong Kong SAR China PCCW Solutions Full time

    We are seeking an experienced Technology Risk Manager with over 10 years of expertise in cybersecurity and IT risk management. The ideal candidate will have a strong understanding of IT controls, risk frameworks, and regulatory requirements, particularly within the Hong Kong governance landscape. This role will be responsible for managing IT risk‑related...


  • Hong Kong Island, Hong Kong SAR China Rober Walters Hong Kong Full time

    Technology Risk Manager Salary: Competitive and based on experience; Location: Hong Kong. Your day‑to‑day activities will involve collaborating with various departments to review IT initiatives from a technology risk perspective; establishing robust policies for both application and system security; conducting thorough assessments using advanced tools;...


  • Hong Kong Island, Hong Kong SAR China Partnerships Senior Manager, Southeast Asia Full time

    Partnerships Senior Manager, Southeast Asia Collinson is a global loyalty and benefits company. We use our expertise and products to craft customer experiences which enable some of the world’s best known brands to acquire, engage and retain the most demanding and choice-rich customers. In particular, our unique expertise and insight into high earning,...


  • Hong Kong Island, Hong Kong SAR China HSH Group The Peninsula Hong Kong Full time

    A prestigious hospitality group is seeking a Senior Manager, Technology Security and Risk to join their team in Hong Kong. This role is crucial for managing information risks and ensuring compliance amidst cybersecurity threats. Candidates should have a degree in Computer Science and over 8 years of relevant experience in security management. The role offers...


  • Hong Kong Island, Hong Kong SAR China OKX Full time

    Risk Manager, Technology & Resilience Risk Hong Kong, Hong Kong SAR Who We Are At OKX, we believe that the future will be reshaped by crypto, and ultimately contribute to every individual's freedom. OKX is a leading crypto exchange, the developer of OKX Wallet, giving millions access to crypto trading and decentralized crypto applications (dApps). OKX is...


  • Hong Kong Island, Hong Kong SAR China DBS Bank (Hong Kong) Limited Full time

    Head of Technology Risk Management, Risk Management Group Risk Management Group (RMG) is responsible for the development and maintenance of risk management and internal control frameworks. We provide independent review and challenge to business to ensure that appropriate balance is considered in risk/return decisions. In addition, RMG is responsible for the...